SAP Asset Accounting could allow a high privileged attacker to exploit insufficient validation of path information provided by the users and pass it through to the file API's. Thus, causing a considerable impact on confidentiality, integrity and availability of the application.

Advisories
Source ID Title
EUVD EUVD EUVD-2024-25093 SAP Asset Accounting could allow a high privileged attacker to exploit insufficient validation of path information provided by the users and pass it through to the file API's. Thus, causing a considerable impact on confidentiality, integrity and availability of the application.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: sap

Published:

Updated: 2024-09-06T18:01:25.580Z

Reserved: 2024-02-27T06:26:16.787Z

Link: CVE-2024-27901

cve-icon Vulnrichment

Updated: 2024-08-02T00:41:55.774Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-04-09T01:15:48.993

Modified: 2024-11-21T09:05:22.907

Link: CVE-2024-27901

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses